the grugq's newsletter

Subscribe
Archives
November 10, 2023

November 10, 2023

November 10, 2023


pic.twitter.com/2vr587FpEI

— bira (@johnwaterscunt) November 8, 2023

When the body of Grand Duke Gediminas was cremated in 1342 the Lithuanian nobles suggested his favourite Christian captive, a knight, should be thrown on the pyre alive; but the knight argued he was blind in one eye and thus an unacceptable gift for the gods, and he was let off

— Dr Francis Young (@DrFrancisYoung) November 9, 2023

Sometimes reddit is really good pic.twitter.com/2kndz219Mf

— TechnicallyRon (On all the platforms) (@TechnicallyRon) November 9, 2023

Microsoft has discovered exploitation of a 0-day vulnerability in the SysAid IT support software in limited attacks by Lace Tempest, a threat actor that distributes Clop ransomware. Microsoft notified SysAid about the issue (CVE-2023-47246), which they immediately patched.

— Microsoft Threat Intelligence (@MsftSecIntel) November 9, 2023

New #ZeroDay abused by #Cl0p #ransomware affiliate!#CVE-2023-47246 is a Path Traversal vulnerability in #SysAid On-Prem software leading to code execution.
In the observed case it was abused to deploy a #Webshell on the affected system.https://t.co/CIzGY2gCAk https://t.co/j8AUZCqNoq

— Gi7w0rm (@Gi7w0rm) November 9, 2023

🚨 New plugin for SysAid On-Prem indexing hosts vulnerable to CVE-2023-47246.

163 hosts found running a version older than 23.3.36

Hosting providers & CERTs have been notified.

Patch now! https://t.co/5C4w9sbJJ6 pic.twitter.com/ImhZnLxKDS

— LeakIX (@leak_ix) November 9, 2023

New #PEsieve/#HollowsHunter (v0.3.8) is out: https://t.co/eXE9fFA1KR & https://t.co/FBWjtKoAp1
- including features discussed in the following video: https://t.co/1Psh4pI4zQ pic.twitter.com/FroWq5vp0H

— hasherezade (@hasherezade) November 9, 2023

Just released perhaps the world's most comprehensive research about Asian APT groups’ tactics, techniques and procedures.

A must read for all #infosec experts👉 https://t.co/iQ9OSI6aH8 pic.twitter.com/na7ZQfy800

— Eugene Kaspersky (@e_kaspersky) November 9, 2023

Modern Asia APT groups TTPs | Securelist

Asian APT groups target various organizations from a multitude of regions and industries. We created this report to provide the cybersecurity community with the best-prepared intelligence data to effectively counteract Asian APT groups.

370 page PDF

https://media.kasperskycontenthub.com/wp-content/uploads/sites/43/2023/11/09055246/Modern-Asian-APT-groups-TTPs_report_eng.pdf


Mimir: "who called it "legend of zelda speedrunning" and …" - meow.social - the mastodon instance for creatures fluffy, scaly and otherwise

who called it "legend of zelda speedrunning" and not "link-time optimization"


Staff Chief of Joints: "There should be an option to make your Roomba swe…" - beige.party

There should be an option to make your Roomba swear when it bumps into things.


When he tries to tell her she's beautiful pic.twitter.com/2zqTvHRs9G

— Timmy O'Danaos (@ODanaos) November 9, 2023

OMG I love the rain ‘n’ sauce era!


The big whoopsie has hit.

Earlier this morning nerds began informing us that equity traders were unable to place trades (or clear previous ones) through ICBC (Industrial and Commercial Bank of China).

An emergency notice was sent out stating:

"ICBC is currently unable to… https://t.co/m1HK0NueKR

— vx-underground (@vxunderground) November 9, 2023

Ransomware is both the lamest and the most amazing thing at the same time.

As I used to say, dismissing “financially motivated” attackers as less effective than states is to ignore capitalism. You know, the thing that built modern civilisation? It’s pretty damn powerful.


From yesterday’s newsletter

An espionage scandal has been brewing in Denmark ever since @Snowden revealed connections to the US intelligence apparatus. Now an intelligence chief and a former minister face trials for disclosing state secrets. Article by @harryfoxdavies, h/t @thegrugq. https://t.co/gGda4jOMSa

— Runa Sandvik (@runasand) November 9, 2023

A follow up.

The cases have just been dropped after the high court refused the prosecution's request to hold them in complete secrecy. So the whole saga ends with a whimper, not a bang.

— Jan Lemnitzer (@JanLemnitzer) November 10, 2023


BBC is covering the developments in Myanmar.

A turning point in Myanmar as army suffers big losses - BBC News

The president warns the country could break apart after the army's biggest setback since its 2021 coup.

Bit of a round up of events:

🇲🇲 #Myanmar: The KNDF has announced the beginning of a new operation dubbed Operation 1107. The operation is intended as a follow up to Operation 1027, a successful offensive against junta forces carried out by the Three Brotherhood Alliance. At least three junta bases have… pic.twitter.com/Wg8BDzfTwK

— POPULAR FRONT (@PopularFront_) November 7, 2023

Myanmar junta facing biggest challenge yet after new offensive by armed groups, analysts say https://t.co/cbdqckG5mn Junta struggling to counter offensive by armed ethnic groups, amid claims it has lost 100 outposts in the north.

— 9DASHLINE (@9DashLine) November 7, 2023

Thais rescued from scammers in Myanmar to return via China

More than 160 Thais tricked into working illegally for scam gangs in Laukkaing township of northern Myanmar will be brought home through China's Yunnan province, and face no immigration charges.

11月1日同盟军对滚弄街子进行清剿,于2日占领中方援缅滚弄大桥东岸 pic.twitter.com/AEbbKNKey5

— 果敢资讯网 (@kokang0123) November 6, 2023

Another major achievement by the MNDAA — taking the Kunlong New Bridge built by China Aid, and completed only back in June of 2023. MNDAA now controls the two key Myanmar towns that make up the Lincang-Chinshwehaw-Kunlong Cross Border Economic Cooperation Zone https://t.co/ZB2YS1eDcx pic.twitter.com/AhbSHni0m9

— Jason Tower (@Jason_Tower79) November 6, 2023

Myanmar’s military has lost control of substantial sections of the border with China, as forces fighting the coup regime coordinate in an unprecedented way. New @USIP looks at implications for PRC-Myanmar relations, the pig-butchering crisis and the future:https://t.co/zAOGEFmhVi

— Jason Tower (@Jason_Tower79) November 8, 2023


VERY strange story developing: four former or current LASD deputies took their own lives on the same day. https://t.co/ihMEI6t4vQ

— Josh Mankiewicz (@JoshMankiewicz) November 8, 2023

Not so strange when you consider that a recent investigation found SIX ACTIVE DEPUTY GANGS running parts of the Los Angeles Sheriff's Department.

That's right, LASD has a gang problem INSIDE the station houses! https://t.co/SlsQVPJVDr pic.twitter.com/FysW3Tozae

— Grant Stern  (@grantstern) November 8, 2023

This is what free will and freedom are all about pic.twitter.com/UZEkMysb1p

— Enezator (@Enezator) November 8, 2023

Reading about how, before killing a bear, Sámi hunters used to ritually chant that it was really being killed by Englishmen in order to deflect blame for the animal's death

— Dr Francis Young (@DrFrancisYoung) November 6, 2023
Don't miss what's next. Subscribe to the grugq's newsletter:

Start the conversation:

Be the first to share your thoughts

X